For inquiries about GlobalPlatform or website assistance, contact secretariat@globalplatform.org.

September 2018 - Newsletter

Letter from GlobalPlatform’s Executive Director

Time is running out to register to attend this year’s seminar, ‘Security in our Connected World’. We have an outstanding speaker line-up of thought leaders from organizations driving security for digital services and devices. It promises to be a great day.

The seminar, which takes place in Beijing on Wednesday, 19 September, will explore real-world technical and business use cases that GlobalPlatform technologies address. The ballroom is filling up quickly though, so be sure to register soon to avoid disappointment.

Demand for our free technical workshop, taking place on Thursday, 20 September, has also been extremely high and all available seats have now been reserved. If you were intending to register for the workshop, please do so as a waiting list has been created and we will contact you should a seat become available.

In addition to our upcoming seminar, please note that we have also launched a new paper on ‘Chains of Trust,’ which demonstrates how to achieve security, privacy and integrity with GlobalPlatform secure components. The paper is available as a free download on the public website here.

See you soon in Beijing!

There is still time to register for the ‘Security in our Connected World’ Seminar in Beijing

The technical workshop is full, but there is still time to register for this year’s main event, the ‘Security in our Connected World’ Seminar in Beijing!

Speakers from Alibaba, Applus+, Baidu, Brightsight, CAICT, China Unicom, Gemalto, Huawei, Infineon, Oracle, STMicroelectronics, Tencent and Trustonic are confirmed, and  will discuss the application of Secure Element (SE) and Trusted Execution Environment (TEE) across a variety of real-world use cases.

The day’s presentations will explore key IoT security challenges, regulatory trends and technologies including Device Trust Architecture (DTA), GlobalPlatform’s contribution to cloud, fog and edge computing, and more! All GlobalPlatform members are entitled to send up to three attendees to the seminar as a benefit of membership.

A special thanks to our Platinum sponsor Huawei, Gold sponsors TrustKernel, STMicroelectronics and Trustonic, Silver sponsors Gemalto and Infineon, and Government Supporter CAICT.

We’d also like to thank our association and media partners for their endorsement and support of this year’s seminar. They are:

  • Cyber Defence Magazine
  • Internet Finance Authentication Alliance
  • IoT Connectivity Alliance
  • IoT Now
  • Java Card Forum
  • mpaypass
  • Smart Communications Alliance (SCA)
  • Smart Insights

Be sure to register soon to avoid disappointment!

Learn More

Did you miss? Registrations are open for fall member meetings in Lisbon

We are pleased to announce that our annual fall member meetings will take place in Lisbon from 12 - 16 November at the Pestana Palace Lisboa.

Task Force sessions are open to all members, and we encourage you to participate in all meetings, particularly the all-member plenary session, which will provide an overview of the on-going activities of GlobalPlatform’s Technical Committees and Task Forces. To view the full schedule, please visit the member website via the global calendar.

Please register for each meeting that you plan to attend by Friday 26 October. If there are any changes in your planned attendance, please update your website registration accordingly.

A limited room block is available at the Pestana Palace Lisboa, and can be booked using this reservation link. Please note that places are allocated on a first-come first-served basis.

Register

GlobalPlatform in-house training sessions

Our in-house training sessions provide education on how to use GlobalPlatform specifications and frameworks to achieve significant cost and time-to-market savings for consumer and industrial use-cases.

GlobalPlatform can bring the training directly to your company with our ‘onsite’ service!

Contact the Secretariat to learn more.

Register now

Watch: Webinar: Protecting Web Apps with Secure Components

Simplicity, convenience, security and privacy are key considerations for users of digital services. Service providers and device manufacturers therefore need to ensure that devices offer adequate security. As the deployment of web applications grows, so does the need to protect them with use cases like online authentication, digital signatures, credential provisioning and secure payments.

In response to this, GlobalPlatform has developed an interface to help developers improve the protection of web applications against attacks and fraud. The standardized interface, which can be implemented in browsers, gives applications access to secure components and secure operations. In this webinar, GlobalPlatform outlines the benefits that secure elements bring for the protection of web services and offer insight into deployment and adoption of the interface.

Watch
Technical Documents

New Document Releases

This version of Amendment F adds a new variant for Secure Channel Protocol ’11’. It is named SCP11c and uses ephemeral keys only on the off-card side. It allows off-line creation of card management scripts. The usage of the same key pairs and certificates for groups of cards enables such scripts to be processed by the whole group. In addition, SCP11c adds a mechanism that allows a script to be transaction protected with a rollback occurring upon error.

It is available for download on the member and public website.

Download Here

This document is an update of the Common Implementation Configuration and references previously updated Amendments. It also adds references to new Amendments.

It is available for download on the member and public website.

Download Here

This is the first GlobalPlatform Open Mobile API version following the transfer from the SIMalliance. The API enables mobile applications to access different secure elements (SE) in mobile devices, such as SIMs or embedded SEs.

It is available for download on the member and public website.

Download Here

This update of the SE Configuration references the latest version of the Common Implementation Configuration and updated Amendments and adds references to new Amendments.

It is available for download on the member and public website.

Download Here

Specifications Under Review

This document presents a Java Language API binding for the GlobalPlatform Open Mobile API Transport Layer that specifically targets the Android Platform from Android P onwards (https://developer.android.com/preview/). This document is intended to be read in conjunction with GlobalPlatform Open Mobile API v3.3, which contains detailed descriptions of expected API behavior. An Open Source implementation of this API forms part of the Android Platform from API Level 28 (Android P). The source code is available from https://android.googlesource.com.

This document is now available for member review.

Please provide your comments via the form available on the public website and send to tee-internal-core-review@globalplatform.org by Thursday 6 September 2018.

Download Form
Speaking Engagements

‘Hardwear.io’

GlobalPlatform Technical Director, Gil Bernabeu, will join the panel session ‘Why the IoT Needs Security’. Keep an eye on the GlobalPlatform website for further details, to be announced soon.

Link

'Identity and Cybersecurity Innovation World'

Gil will join the Biometrics & Strong Authentication Advances session on Wednesday 26 September from 9:00AM, to discuss ‘Trusted UI and Biometrics – From APIs to Certification’.

Link

'Connect Security World'

Gil will deliver a presentation on ‘Embedding Trust in IoT Systems and Hardware’ on Tuesday 25 September. The time of the presentation will be announced shortly on our website.

Link

‘CEATEC Japan’

Chair of the Japan Task Force, Mr. Eikazu Niwano, will deliver a presentation, titled ‘IoT Security for Key Stakeholders - Connecting the Dots’ on Tuesday 16 October at 10:15am.

Link

‘International Common Criteria Conference’

Gil will join the panel ‘The why and how of using CC in Private Schemes’ on Tuesday 30 October at 4:30PM. He will also present ‘TEE Certification: Managing Risk for Digital Services’ on Wednesday 31 October at 10am.

Link

Did you miss our webinar for BrightTALK’s Securing the IoT Virtual Summit?

Here is another chance to watch our BrightTALK webinar, in which Gil discusses IoT security challenges and explains how GlobalPlatform builds trust into today’s digital services and devices.

Watch
Membership Offers

For archived newsletters

GlobalPlatform
Hey There!

It seems you are using an outdated browser, unfortunately this means that our website will not render properly for you. Update your browser to view this website correctly.

GOOGLE CHROME
FIREFOX
MICROSOFT EDGE